Vulnerabilities > CVE-2007-2742 - Unspecified vulnerability in Labs.Beffa.Org W2Box 4.0.0Beta4

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
labs-beffa-org

Summary

Unrestricted file upload vulnerability in labs.beffa.org w2box 4.0.0 Beta4 allows remote attackers to upload arbitrary PHP code via a filename with a double extension such as .php.jpg.

Vulnerable Configurations

Part Description Count
Application
Labs.Beffa.Org
1